secret app for iOS and android is sending some info over HTTP

Disclosed: 2014-08-16 23:31:13 By told_snider To secret
Unknown
Vulnerability Details
POC for android: POST /metrics HTTP/1.1 Content-Type: application/json User-Agent: Dalvik/1.6.0 (Linux; U; Android 4.2.2; google_sdk Build/JB_MR1.1) Host: notify.bugsnag.com Connection: Keep-Alive Accept-Encoding: gzip Content-Length: 468 {"device":{"id":"6a2be12c-db31-4a3b-9684-f4d5a3e7188a","model":"google_sdk","osVersion":"4.2.2","totalMemory":50331648,"apiLevel":17,"jailbroken":true,"manufacturer":"unknown","locale":"en_US","screenResolution":"728x480","screenDensity":1.5,"osName":"android"},"app":{"releaseStage":"production","packageName":"ly.secret.android","id":"ly.secret.android","version":"1"},"user":{"id":"6a2be12c-db31-4a3b-9684-f4d5a3e7188a"},"apiKey":"42062feb3044ef86b492c724ffc87691"} POC for IOS: POST /aas.do HTTP/1.1 Host: data.flurry.com Proxy-Connection: keep-alive Accept-Encoding: gzip, deflate Content-Type: application/octet-stream Accept-Language: en-us Accept: */* Pragma: no-cache Content-Length: 294 Connection: keep-alive User-Agent: Secret/3 CFNetwork/672.0.8 Darwin/14.0.0 {F+.QQWQYVHGXCQ4JFYX8HXW3$B51F061B-B2B4-4B61-8695-E9CE5D3772CF$DD8B763A-F256-46BB-A102-4F86171F0B9CÁ—d)6›þ>س@·ÇçØq–ÙF%4hF+.ß scr.height480 device.archarm32device.os.version7.0.4device.model.1 iPhone4,1 scr.width320âxõÑ i attached POC images please fix it by using HTTPS ( secure one ) best regards
Actions
View on HackerOne
Report Stats
  • Report ID: 12977
  • State: Closed
  • Substate: resolved
  • Upvotes: 3
Share this report